@@ -16,7 +16,7 @@ CVE Binary Tool uses the NVD API but is not endorsed or certified by the NVD.
16
16
17
17
The tool has two main modes of operation:
18
18
19
- 1 . A binary scanner which helps you determine which packages may have been included as part of a piece of software. There are <!-- NUMBER OF CHECKERS START--> 409 <!-- NUMBER OF CHECKERS END--> checkers. Our initial focus was on common, vulnerable open source components such as openssl, libpng, libxml2 and expat.
19
+ 1 . A binary scanner which helps you determine which packages may have been included as part of a piece of software. There are <!-- NUMBER OF CHECKERS START--> 410 <!-- NUMBER OF CHECKERS END--> checkers. Our initial focus was on common, vulnerable open source components such as openssl, libpng, libxml2 and expat.
20
20
21
21
2 . Tools for scanning known component lists in various formats, including .csv, several linux distribution package lists, language specific package scanners and several Software Bill of Materials (SBOM) formats.
22
22
@@ -226,66 +226,66 @@ The following checkers are available for finding components in binary files:
226
226
227
227
<!-- CHECKERS TABLE BEGIN-->
228
228
| | | | Available checkers | | | |
229
- | --------------- | -------------- | ------------------ | ---------------- | -------------- | --------------- | -- --------------- |
229
+ | ----------------- | --------------- | ------------------ | ------------- | ---------------- | -------------- | --------------- |
230
230
| accountsservice | acpid | apache_http_server | apcupsd | apparmor | apr | asn1c |
231
231
| assimp | asterisk | atftp | augeas | avahi | axel | bash |
232
232
| bind | binutils | bird | bison | bluez | boa | boinc |
233
233
| botan | bro | bubblewrap | busybox | bwm_ng | bzip2 | c_ares |
234
- | cairo | capnproto | ceph | cflow | chess | chrony | civetweb |
235
- | clamav | clang | collectd | commons_compress | connman | coreutils | cpio |
236
- | cpp_httplib | cronie | cryptsetup | cups | cups_filters | curl | cvs |
237
- | darkhttpd | dav1d | davfs2 | dbus | debianutils | dhclient | dhcpcd |
238
- | dhcpd | djvulibre | dlt_daemon | dmidecode | dnsmasq | docker | domoticz |
239
- | dosfstools | dotnet | dovecot | doxygen | dpkg | dropbear | e2fsprogs |
240
- | ed | elfutils | emacs | enscript | exfatprogs | exim | exiv2 |
241
- | f2fs_tools | faad2 | fastd | ffmpeg | file | firefox | firejail |
242
- | flac | fluidsynth | freeradius | freerdp | fribidi | frr | fuse |
243
- | gawk | gcc | gdal | gdb | gdk_pixbuf | gettext | ghostscript |
244
- | gimp | git | glib | glibc | gmp | gnomeshell | gnupg |
245
- | gnutls | go | gpgme | gpsd | graphicsmagick | grep | grub2 |
246
- | gsasl | gstreamer | guile | gupnp | gvfs | gzip | haproxy |
247
- | harfbuzz | haserl | hdf5 | heimdal | hostapd | hunspell | hwloc |
248
- | i2pd | icecast | icu | imagemagick | indent | inetutils | iperf3 |
249
- | ipmitool | ipsec_tools | iptables | irssi | iucode_tool | iwd | jack2 |
250
- | jacksondatabind | janus | jasper | jbig | jhead | jq | json_c |
251
- | kbd | keepalived | kerberos | kexectools | kodi | kubernetes | ldns |
252
- | lftp | libarchive | libass | libbpg | libcap | libcoap | libconfuse |
253
- | libcurl | libdb | libde265 | libebml | libevent | libexpat | libgcrypt |
254
- | libgd | libgit2 | libheif | libical | libidn2 | libinput | libjpeg |
255
- | libjpeg_turbo | libksba | liblas | liblouis | libmatroska | libmemcached | libmicrohttpd |
256
- | libmodbus | libnss | libopenmpt | libpcap | libraw | libreoffice | libreswan |
257
- | librsvg | librsync | libsamplerate | libseccomp | libsndfile | libsolv | libsoup |
258
- | libsrtp | libssh | libssh2 | libtasn1 | libtiff | libtomcrypt | libupnp |
259
- | libuv | libvips | libvirt | libvncserver | libvorbis | libvpx | libxslt |
260
- | libyaml | libyang | lighttpd | linux_kernel | linuxptp | lldpd | llvm |
261
- | logrotate | lrzip | lua | luajit | lxc | lynx | lz4 |
262
- | lzo2 | mailx | mariadb | mbedtls | mdadm | memcached | micropython |
263
- | minetest | mini_httpd | minicom | minidlna | miniupnpc | miniupnpd | moby |
264
- | modsecurity | monit | mosquitto | motion | mp4v2 | mpg123 | mpv |
265
- | msmtp | mtr | mupdf | musl | mutt | mysql | nano |
266
- | nasm | nbd | ncurses | neon | nessus | netatalk | netdata |
267
- | netkit_ftp | netpbm | nettle | nghttp2 | nginx | ngircd | nmap |
268
- | node | ntfs_3g | ntp | ntpsec | oath_toolkit | ofono | open_iscsi |
269
- | open_vm_tools | openafs | openblas | opencv | openjpeg | openldap | opensc |
270
- | openssh | openssl | openswan | openvpn | openvswitch | orc | p7zip |
271
- | pango | patch | pcre | pcre2 | pcsc_lite | perl | php |
272
- | picocom | pigz | pixman | pjsip | png | polarssl_fedora | poppler |
273
- | postgresql | ppp | privoxy | procps_ng | proftpd | protobuf_c | pspp |
274
- | pure_ftpd | putty | python | qemu | qpdf | qt | quagga |
275
- | radare2 | radvd | raptor | rauc | rdesktop | readline | redis |
276
- | rpm | rsync | rsyslog | rtl_433 | rtmpdump | ruby | runc |
277
- | rust | samba | sane_backends | sasl | sdl | seahorse | shadowsocks_libev |
278
- | snapd | sngrep | snort | socat | sofia_sip | speex | spice |
279
- | sqlite | squashfs | squid | sslh | stellarium | strongswan | stunnel |
280
- | subversion | sudo | suricata | sylpheed | syslogng | sysstat | systemd |
281
- | tar | tbb | tcpdump | tcpreplay | terminology | tesseract | thrift |
282
- | thttpd | thunderbird | timescaledb | tinyproxy | tor | toybox | tpm2_tss |
283
- | traceroute | transmission | trousers | ttyd | twonky_server | u_boot | udisks |
284
- | unbound | unixodbc | upx | util_linux | uwsgi | varnish | vim |
285
- | vlc | vorbis_tools | vsftpd | wavpack | webkitgtk | wget | wireshark |
286
- | wolfssl | wpa_supplicant | xerces | xml2 | xpdf | xscreensaver | xwayland |
287
- | xz | yasm | zabbix | zbar | zchunk | zeek | zlib |
288
- | znc | zsh | zstandard | | | | |
234
+ | cairo | capnproto | captive_portal | ceph | cflow | chess | chrony |
235
+ | civetweb | clamav | clang | collectd | commons_compress | connman | coreutils |
236
+ | cpio | cpp_httplib | cronie | cryptsetup | cups | cups_filters | curl |
237
+ | cvs | darkhttpd | dav1d | davfs2 | dbus | debianutils | dhclient |
238
+ | dhcpcd | dhcpd | djvulibre | dlt_daemon | dmidecode | dnsmasq | docker |
239
+ | domoticz | dosfstools | dotnet | dovecot | doxygen | dpkg | dropbear |
240
+ | e2fsprogs | ed | elfutils | emacs | enscript | exfatprogs | exim |
241
+ | exiv2 | f2fs_tools | faad2 | fastd | ffmpeg | file | firefox |
242
+ | firejail | flac | fluidsynth | freeradius | freerdp | fribidi | frr |
243
+ | fuse | gawk | gcc | gdal | gdb | gdk_pixbuf | gettext |
244
+ | ghostscript | gimp | git | glib | glibc | gmp | gnomeshell |
245
+ | gnupg | gnutls | go | gpgme | gpsd | graphicsmagick | grep |
246
+ | grub2 | gsasl | gstreamer | guile | gupnp | gvfs | gzip |
247
+ | haproxy | harfbuzz | haserl | hdf5 | heimdal | hostapd | hunspell |
248
+ | hwloc | i2pd | icecast | icu | imagemagick | indent | inetutils |
249
+ | iperf3 | ipmitool | ipsec_tools | iptables | irssi | iucode_tool | iwd |
250
+ | jack2 | jacksondatabind | janus | jasper | jbig | jhead | jq |
251
+ | json_c | kbd | keepalived | kerberos | kexectools | kodi | kubernetes |
252
+ | ldns | lftp | libarchive | libass | libbpg | libcap | libcoap |
253
+ | libconfuse | libcurl | libdb | libde265 | libebml | libevent | libexpat |
254
+ | libgcrypt | libgd | libgit2 | libheif | libical | libidn2 | libinput |
255
+ | libjpeg | libjpeg_turbo | libksba | liblas | liblouis | libmatroska | libmemcached |
256
+ | libmicrohttpd | libmodbus | libnss | libopenmpt | libpcap | libraw | libreoffice |
257
+ | libreswan | librsvg | librsync | libsamplerate | libseccomp | libsndfile | libsolv |
258
+ | libsoup | libsrtp | libssh | libssh2 | libtasn1 | libtiff | libtomcrypt |
259
+ | libupnp | libuv | libvips | libvirt | libvncserver | libvorbis | libvpx |
260
+ | libxslt | libyaml | libyang | lighttpd | linux_kernel | linuxptp | lldpd |
261
+ | llvm | logrotate | lrzip | lua | luajit | lxc | lynx |
262
+ | lz4 | lzo2 | mailx | mariadb | mbedtls | mdadm | memcached |
263
+ | micropython | minetest | mini_httpd | minicom | minidlna | miniupnpc | miniupnpd |
264
+ | moby | modsecurity | monit | mosquitto | motion | mp4v2 | mpg123 |
265
+ | mpv | msmtp | mtr | mupdf | musl | mutt | mysql |
266
+ | nano | nasm | nbd | ncurses | neon | nessus | netatalk |
267
+ | netdata | netkit_ftp | netpbm | nettle | nghttp2 | nginx | ngircd |
268
+ | nmap | node | ntfs_3g | ntp | ntpsec | oath_toolkit | ofono |
269
+ | open_iscsi | open_vm_tools | openafs | openblas | opencv | openjpeg | openldap |
270
+ | opensc | openssh | openssl | openswan | openvpn | openvswitch | orc |
271
+ | p7zip | pango | patch | pcre | pcre2 | pcsc_lite | perl |
272
+ | php | picocom | pigz | pixman | pjsip | png | polarssl_fedora |
273
+ | poppler | postgresql | ppp | privoxy | procps_ng | proftpd | protobuf_c |
274
+ | pspp | pure_ftpd | putty | python | qemu | qpdf | qt |
275
+ | quagga | radare2 | radvd | raptor | rauc | rdesktop | readline |
276
+ | redis | rpm | rsync | rsyslog | rtl_433 | rtmpdump | ruby |
277
+ | runc | rust | samba | sane_backends | sasl | sdl | seahorse |
278
+ | shadowsocks_libev | snapd | sngrep | snort | socat | sofia_sip | speex |
279
+ | spice | sqlite | squashfs | squid | sslh | stellarium | strongswan |
280
+ | stunnel | subversion | sudo | suricata | sylpheed | syslogng | sysstat |
281
+ | systemd | tar | tbb | tcpdump | tcpreplay | terminology | tesseract |
282
+ | thrift | thttpd | thunderbird | timescaledb | tinyproxy | tor | toybox |
283
+ | tpm2_tss | traceroute | transmission | trousers | ttyd | twonky_server | u_boot |
284
+ | udisks | unbound | unixodbc | upx | util_linux | uwsgi | varnish |
285
+ | vim | vlc | vorbis_tools | vsftpd | wavpack | webkitgtk | wget |
286
+ | wireshark | wolfssl | wpa_supplicant | xerces | xml2 | xpdf | xscreensaver |
287
+ | xwayland | xz | yasm | zabbix | zbar | zchunk | zeek |
288
+ | zlib | znc | zsh | zstandard | | | |
289
289
<!-- CHECKERS TABLE END-->
290
290
291
291
All the checkers can be found in the checkers directory, as can the
0 commit comments